4 ms·
I want to see the words "encrypted at rest", or something similar.
by todd_t 6y ago
I want to see the words "encrypted at rest", or something similar.
- lojack 6y agoUnless they're self hosting, this might even be a super easy thing to add. With AWS and many other cloud providers this is either the default or a simple checkbox.
- stevehawk 6y agoOn the off chance that someone physically steals the server?
- edoceo 6y agoOr steals bits at rest remotely for later analysis
- deleted 6y ago[deleted]
- java-man 6y agoStandard Notes [0] are allegedly encrypted at rest. [0] https://standardnotes.org/ https://standardnotes.org/
- 0xCMP 6y agoIn Standard Notes' case they are AES encrypted before leaving the device using a note specific key encrypted using your master password (or at least that's how the underlying system Standard File used to work). Encrypted at rest could just mean the volume is encrypted but they can still read your notes (since they have the key).
- java-man 6y agoThey say it's XChaCha20-Poly1305 [0], and "no one but you" can read your private notes [1] (I don't know what that means). They also list some security audits, though not without problems. [0] https://standardnotes.org/help/3/how-does-standard-notes-secure-my-notes https://standardnotes.org/help/3/how-does-standard-notes-sec... [1] https://standardnotes.org/help/1/who-can-read-my-private-notes https://standardnotes.org/help/1/who-can-read-my-private-not...